Senior Security Engineer, SOC

2 weeks ago


New Delhi, India Poshmark Full time

Responsibilities Monitor and analyze security event logs and alerts to detect potential incidents, and lead investigations for containment, eradication, and recovery. Lead security incident investigation, containment, eradication, and recovery activities. Monitor AWS Security tools including GuardDuty, CloudTrail, IAM, AWS WAF, Shield, VPC Flow Logs to monitor and secure cloud workloads. Perform in-depth analysis of sophisticated security incidents and targeted attacks across systems, networks, and code to identify root causes and prevent recurrence. Enhance detection and response capabilities through automation, including fine-tuning alerts to reduce false positives and automating responses to repetitive incidents. Develop and maintain incident response playbooks for distinct types of security incidents, ensuring they align with current threats. Leverage IOCs, threat intelligence, and other data sources to enrich security events, improving detection accuracy and reducing incident response time. Work with security stakeholders and cross-functional teams to coordinate incident response efforts and improve overall security initiatives. Conduct proactive threat hunting to identify potential malicious activities and mitigate emerging risks before they escalate. Collaborate with Product security and infrastructure security team to conduct vulnerability scans, penetration tests, and risk assessments to uncover weaknesses in the security posture. Collaborate with IT and development and other relevant stakeholders to identify and contain the incident till to ensure timely patching and remediation of vulnerabilities.Required Experience: A minimum of 5 years of experience in a Security Operations Center (SOC) environment. Relevant certifications such GCIA, GCIH, AWS Security Specialist or any other certification that is in the field of Security Operations or Incident Response. Hands-on experience with security tools and technologies such as SIEMs, Endpoint Detection and Response (EDR), Web Application Firewalls (WAFs), Intrusion Detection Systems (IDS), and vulnerability scanners. Proficient in the incident response process, including identification, containment, remediation, and recovery. Skilled in defense-in-depth and layered security architecture design and implementation. Experience with cloud security services, preferably in AWS environments. Strong analytical and problem-solving skills with a detail-oriented approach to security challenges. Excellent verbal and written communication skills, capable of conveying complex security concepts to non-technical stakeholders.6-Month Accomplishments: Continuously perform security incident investigation, containment, eradication, and recovery. This includes identifying and responding to security incidents, containing the spread of the incident, eradicating the malware or other malicious code, and recovering the affected systems. Stay up-to-date on the current IT threat landscape and upcoming trends in security. This involves reading security blogs and articles, attending security conferences, and subscribing to security mailing lists. You should also use security tools and services that provide threat intelligence. Write new high-fidelity detections and incident response playbooks. This includes writing new rules and playbooks for your organization's security tools to help detect and respond to security incidents. You should have a deep understanding of your organization's security infrastructure and be familiar with the latest security threats and attack vectors.12+ Month Accomplishments: Reduce Mean-Time-to-Detect (MTTD) and Mean-Time-to-Respond (MTTR) through automation. Improve Security Operations Posture by continuously improving detections, writing high fidelity detections and maintaining up to date Incident Response Playbooks. Partner with cross-functional teams to identify business-critical operations and recommend strategies to enhance business continuity and resilience Working on Projects that will help shore up the Security Operations PostureGood to have: Coding Skills: Proficient in coding languages like Python or Go



  • New Delhi, India Mphasis Full time

    Job Description: Senior Manager – SOC OperationsRole Overview We are seeking an experienced, hands-on Senior Manager to lead our Security Operations Center (SOC). The ideal candidate will bring deep technical expertise, proven leadership experience, and a track record of building, optimizing, and maturing SOC functions. This individual will play a critical...

  • Security Lead

    2 weeks ago


    New Delhi, India Eventus Security Full time

    Job Title: Security Lead (SOC) Location: Ahmedabad and Navi Mumbai Experience: 5+ yrsResponsibility Areas – Security Lead (L3) – SOC Security Incident Leadership Lead high-priority security investigations and incident response activities, ensuring accurate analysis, containment, remediation, and post-incident reporting.Operational Oversight Oversee...

  • SOC Lead Engineer

    7 days ago


    New Delhi, India Versa Networks Full time

    SOC Lead Engineer Location:Bangalore Experience: 8- 15 YRSJob Summary The SOC Lead Engineer is responsible for overseeing the Security Operations Center team, ensuring 24/7 monitoring, detection, analysis, and response to security threats. This role involves managing incident response processes, optimising security tools, and leading a team of security...

  • SOC/NOC Team Lead

    5 days ago


    New Delhi, India Symosis Security Full time

    Location: Remote (India)Type: Full-TimeCompany: Symosis SecurityAbout Symosis SecuritySymosis is a cybersecurity consulting firm purpose-built for the AI-native, cloud-first era. We help public-sector and enterprise clients mature their security operations through managed services, offensive testing, governance, and automation. We’re expanding our MSSP...

  • TAC Security

    7 days ago


    New Delhi, India TAC Security Full time

    & Program Management- Lead the full lifecycle of compliance programs from scoping and gap assessments to remediation, controls implementation, audit prep, and certification.- Maintain and continually improve the Information Security Management System (ISMS) as per ISO standards.- Oversee the SOC 2 program: manage readiness assessments, control design,...

  • SOC Lead Engineer

    5 days ago


    New Delhi, India Versa Networks Full time

    SOC Lead EngineerLocation: BangaloreExperience: 8- 15 YRSJob SummaryThe SOC Lead Engineer is responsible for overseeing the Security Operations Center team, ensuring 24/7 monitoring, detection, analysis, and response to security threats.This role involves managing incident response processes, optimising security tools, and leading a team of security analysts...


  • New Delhi, India ColorTokens Inc. Full time

    About ColorTokensAt ColorTokens, we empower businesses to stay operational and resilient in an increasingly complex cybersecurity landscape. Breaches happen—but with our cutting-edge ColorTokens Xshield™ platform, companies can minimize the impact of breaches by preventing the lateral spread of ransomware and advanced malware. We enable organizations to...

  • Senior SoC Director

    7 days ago


    New Delhi, India Mulya Technologies Full time

    Senior SoC Director / Senior Principal Engineer Bangalore / HyderabadAbout Omni Design Technologies Omni Design Technologies is a leading provider of high-performance, ultra-low power IP cores, from 28nm down through advanced FinFET nodes, which enable differentiated system-on-chip (SoC), in applications ranging from 5G, wireline and optical communications,...


  • New Delhi, India Triune Infomatics Inc Full time

    Role: Senior Cybersecurity SOC Engineer – Threat Hunting & Incident ResponseWorking Hours: Monday to Friday, 9 AM – 5 PM PST (U.S. Business Hours)Reporting To: Security Operations (SecOps) Leader – USAAbout the Role: We are seeking an elite Senior Cybersecurity SOC Engineer—a hands-on security expert with deep technical knowledge and proven...


  • New Delhi, India Triune Infomatics Inc Full time

    Role: Senior Cybersecurity SOC Engineer – Threat Hunting & Incident Response Working Hours: Monday to Friday, 9 AM – 5 PM PST (U.S. Business Hours) Reporting To: Security Operations (SecOps) Leader – USAAbout the Role:We are seeking an elite Senior Cybersecurity SOC Engineer—a hands-on security expert with deep technical knowledge and proven...